Pilot Metrics
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill's requirements and runtime instructions are coherent with its stated purpose (collecting agent metrics) and do not request unrelated credentials or perform unexpected actions.
This skill appears coherent and limited to running pilotctl and jq to collect metrics. Before installing: ensure the pilotctl binary you have on PATH is from a trusted source (the skill runs it with your permissions), confirm the pilot daemon is intended to run on the host, and be aware the example script writes to /tmp (review and run in a safe environment). The skill is AGPL-3.0 licensed and depends on the separate pilot-protocol skill — verify that dependency. If you do not trust the pilotctl binary or the pilot network, do not enable the skill.
SkillSpector
SkillSpector findings are pending for this release.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
